Cisco PIX 500 Series Configuration Manual page 1061

Security appliance command line
Hide thumbs Also See for PIX 500 Series:
Table of Contents

Advertisement

Appendix E
Configuring an External Server for Authorization and Authentication
Table E-2
Security Appliance Supported LDAP Cisco Schema Attributes (continued)
Attribute Name/
OID (Object Identifier)
Simultaneous-Logins
Strip-Realm
TACACS-Authtype
TACACS-Privilege-Level
Tunnel-Group-Lock
Tunneling-Protocols
Use-Client-Address
User-Auth-Server-Name
User-Auth-Server-Port
User-Auth-Server-Secret
WebVPN-ACL-Filters
WebVPN-Apply-ACL-Enable
WebVPN-Citrix-Support-Enable
WebVPN-Content-Filter- Parameters
WebVPN-Enable-functions
WebVPN-Exchange-Server- Address
OL-12172-03
VPN
Attr.
1
3000 ASA PIX
OID
Y
Y
Y
2
Y
Y
Y
47
Y
Y
92
Y
Y
Y
8
Y
13
Y
49
Y
50
Y
51
Y
72
Y
Y
84
Y
Y
83
Y
Y
56
57
58
Cisco Security Appliance Command Line Configuration Guide
Configuring an External LDAP Server
Single
or
Syntax/
Multi-
Type
Valued
Possible Values
Integer
Single
0-2147483647
Boolean Single
0 = Disabled
1 = Enabled
String
Single
Name of the tunnel group or
"none"
Integer
Single
1 = PPTP
2 = L2TP
4 = IPSec
8 = L2TP/IPSec
16 = WebVPN.
8 and 4 are mutually exclusive
(0 - 11, 16 - 27 are legal
values)
Boolean Single
0 = Disabled
1 = Enabled
String
Single
IP address or hostname
Integer
Single
Port number for server protocol
String
Single
Server password
String
Single
Access-List name
Integer
Single
0 = Disabled
1 = Enabled
Integer
Single
0 = Disabled
1 = Enabled
Integer
Single
1 = Java & ActiveX
2 = Java scripts
4 = Images
8 = Cookies in images
Add the values to filter multiple
parameters. For example: enter
10 to filter both Java scripts and
cookies. (10 = 2 + 8)
Integer
Single
Not used - deprecated
String
Single
Not used - deprecated
E-11

Advertisement

Table of Contents
loading

This manual is also suitable for:

Asa 5500 series

Table of Contents